In the Linux kernel, the following vulnerability has been resolved:
usb: ucsi: Fix NULL pointer deref in ucsi_connector_change()
When ucsi_init() fails, ucsi->connector is NULL, yet in case of ucsi_acpi we may still get events which cause the ucs_acpi code to call ucsi_connector_change(), which then derefs the NULL ucsi->connector pointer.
Fix this by not setting ucsi->ntfy inside ucsi_init() until ucsi_init() has succeeded, so that ucsi_connector_change() ignores the events because UCSI_ENABLE_NTFY_CONNECTOR_CHANGE is not set in the ntfy mask.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | May 5, 2025 | May 2, 2025 |
| Huawei Euleros 2_0_sp13 | — | Upgrade kernel-tools-libsUpgrade bpftoolUpgrade kernel-abi-stablelistsUpgrade kernelUpgrade kernel-toolsUpgrade python3-perf | Sep 25, 2025 | Sep 15, 2025 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | May 2, 2025 |
| Ubuntu | — | Upgrade linux-riscv-5.15Upgrade linux-azure-5.15Upgrade linux-gkeopUpgrade linux-intel-iot-realtimeUpgrade linux-gcpUpgrade linuxUpgrade linux-kvmUpgrade linux-oracleUpgrade linux-nvidia-tegra-igxUpgrade linux-ibmUpgrade linux-lowlatencyUpgrade linux-nvidiaUpgrade linux-xilinx-zynqmpUpgrade linux-oracle-5.15Upgrade linux-intel-iotgUpgrade linux-intel-iotg-5.15Upgrade linux-ibm-5.15Upgrade linux-hwe-5.15Upgrade linux-awsUpgrade linux-gkeUpgrade linux-azureUpgrade linux-aws-5.15Upgrade linux-lowlatency-hwe-5.15Upgrade linux-bluefieldUpgrade linux-raspiUpgrade linux-nvidia-tegra-5.15Upgrade linux-nvidia-tegraUpgrade linux-gcp-5.15Upgrade linux-realtime | May 8, 2025 | May 2, 2025 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | May 27, 2026 | May 2, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub